Skip to content Skip to navigation Skip to footer

Secure Web Gateway (SWG) Solutions

Enterprise-class protection against internet-borne threats

Secure Web Gateway (SWG) Solutions banner background banner dots

Overview

Secure Web Gateway (SWG) Solutions

As Enterprises continue to rearchitect their WAN Edge with rapid migration of applications to the cloud, the attack surface at the remote sites/branch locations continues to increase. This risk is especially high for web-based traffic, as web-based threat continue to be one of the primary attack vectors. As attack techniques become more advanced and versatile, organizations need an integrated approach to secure against external and internal risks. Fortinet's secure web gateway provides flexible deployment options to protect against internet-based threats without compromising on end-user experience.

Secure Web Gateway(SWG) Models and Specifications

SWG is available in different form factors with many different models to choose from to meet your needs ranging from hardware appliances to VM options that be deployed in your datacenter.

Compare Products

View by:

Hardware Appliances
吞吐量
9.5 Gbps
港口
8x1GE RJ45, 8x1GE SFP, 2x10G SFP+
SSL Inspection
8 Gbps
吞吐量
5 Gbps
港口
2x 10 GE SFP+, 10x GE RJ45, 8x GE SFP
SSL Inspection
6.8 Gbps
吞吐量
6 Gbps
港口
16x 1GE RJ45, 16x 1GE SFP
SSL Inspection
4.8 Gbps
Throughput
4 Gbps
港口
2x 10 GE SFP+, 10x GE RJ45, 8x GE SFP
SSL Inspection
6.8 Gbps
Throughput
5 Gbps
港口
2x 10 GE SFP+, 16x GE SFP, 18x GE RJ45
SSL Inspection
4 Gbps
吞吐量
6 Gbps
港口
4x 10GE SFP+/GE SFP, 16x GE SFP, 18x GE RJ45
SSL Inspection
6 Gbps
Throughput
7 Gbps
港口
8x 10GE SFP+/GE SFP, 16x GE SFP, 18x GE RJ45
SSL Inspection
10.5 Gbps
吞吐量
9 Gbps
港口
6x 10GE SFP+, 34x GE RJ45
SSL Inspection
12.5 Gbps
Throughput
9 Gbps
港口
10x 10GE SFP+, 2x 10GE SFP+ bypass, 34x GE RJ45
SSL Inspection
12.5 Gbps
Throughput
22 Gbps
港口
16x 10GE SFP+/GE SFP, 2x GE RJ45
SSL Inspection
19 Gbps
吞吐量
24 Gbps
港口
48x 10GE SFP+/GE SFP, 2x GE RJ45
SSL Inspection
20 Gbps
吞吐量
20 Gbps
港口
4x 40GE QSFP+, 20x 10GE SFP+/GE SFP, 8x SFP+, 2x GE RJ45
SSL Inspection
24 Gbps
Virtual Machines
FortiGate is supported on VMware, Microsoft Hyper-V, Citrix XenServer, Open Source Xen, KVM, Amazon Web Services (AWS) and Microsoft Azure. Please see the data sheet for more details.

吞吐量
2.5 Gbps
港口
1 / 10 (Minimum/Maximum)
吞吐量
4.5 Gbps
港口
1 / 10 (Minimum/Maximum)
吞吐量
9 Gbps
港口
1 / 10 (Minimum/Maximum)
吞吐量
16.5 Gbps
港口
1 / 10 (Minimum/Maximum)

Actual performance may vary depending on the network and system configuration. Performance metrics were observed using a DELL R740 (CPU Intel Xeon Platinum 8168 2.7 GHz, Intel X710 network adapters), running FOS v5.6.3. Tested with VMware vSphere 6.5 Enterprise Plus. SR-IOV is enabled. 1. IPS performance is measured using 1 Mbyte HTTP and Enterprise Traffic Mix. 2. Application Control performance is measured with 64 Kbytes HTTP traffic. 3. NGFW performance is measured with IPS and Application Control enabled, based on Enterprise Traffic Mix. 4. Threat Protection performance is measured with IPS and Application Control and Malware protection enabled, based on Enterprise Traffic Mix.

Public Cloud
Amazon Web Services (AWS) and Microsoft Azure supported for both BYOL (bring your own license) and On-demand (pay-as-you go). Please see the AWS and Azure Marketplace listings for more information:
Hardware Appliances
模型
FortiProxy 400E
License Capacity
500-2,500 Users
港口
4x GE RJ45
模型
FortiProxy 2000E
License Capacity
2,500-25,000 Users
港口
2x 10 GE SFP+, 2x GE SFP ports, 2x GE RJ45 ports
模型
FortiProxy 4000E
License Capacity
15,000-50,000 Users
港口
4x 10 GE SFP+, 2x GE SFP ports, 4x GE RJ45 ports
Virtual Machines
模型
FortiProxy VM
License Capacity
25-25,000 Users
港口
1 / 10 (Minimum/Maximum)

FortiGuard Security Services for Secure Web Gateway (SWG)

FortiGate SWG employs multiple FortiGuard services to protect users against the latest web threats and to enforce compliance.  One of the key services is FortiGuard Web Filtering, which is the only web filtering service in the industry that is VBWeb certified for security effectiveness by Virus Bulletin.

網頁篩選

透過對惡意、被入侵或不當網站的存取封鎖來保護您的組織。

FortiSandbox 雲端

FortiSandbox 雲端服務是一個進階威脅偵測解決方案,可執行動態分析以識別先前未知的惡意軟體。FortiSandbox 雲端產生的可執行情報會反饋到網路中的預防控制機制,進而消除威脅。

防毒

FortiGuard 防毒可阻斷最新病毒、間諜軟體以及其他內容層面的威脅。它採用行業領先的進階偵測引擎來阻止不斷變化的新威脅在您的網路中獲得據點、存取網路中寶貴的內容。

應用程式控制

可對您的客戶正在執行的應用程式獲得無可比擬的即時可視性,並輕鬆實施您可接受的使用原則,進而提高安全性並滿足合規要求。透過 FortiGuard 應用程式控制,您可以快速建立原則來允許、拒絕或限制對應用程式或整個類別的應用程式的存取。

入侵防護

FortiGuard IPS 透過偵測威脅並在威脅侵入到網路裝置前進行封鎖,以此抵禦最新的網路入侵。

Features and Benefits

integration icon

Feature-rich product that consolidates NGFW and SWG services

high performance icon

Powerful hardware that can perform SSL deep inspection

icon vulnerability

Anti-malware techniques updated with the latest threat intelligence

icon benefits management

Reduce security team’s workload by providing a single pane of glass management for both NGFW and SWG

Visibility Protection

Effectively remove blind spots in encrypted traffic, without compromising on performance

checkmark icon

Stay protected against the latest known and unknown internet-borne attacks 

What is a Secure Web Gateway (SWG)?

Secure Web Gateway (SWG) solutions use web filtering to enforce company Internet access policies. They also filter unwanted software, especially malware, from user-initiated Internet connections.

SWGs are hugely important as enterprises have continued to evolve their WAN Edge. Applications are rapidly migrating to the cloud, and the attack surface at remote sites and branch locations continues to increase. Security risks are especially high for web-based traffic, and as attack techniques become more advanced, organizations need an integrated approach to secure against external and internal risks.

An SWG solution should include URL filtering, application control, deep HTTPS/SSL inspection, data loss prevention and remote browser isolation capabilities. SWGs are increasingly popular, and the overall web gateway market is expected to reach $4B by 2023.

Fortinet's SWG provides flexible deployment options, including explicit, transparent, and inline modes, to protect against internet-based threats without harming end-user experience.

Secure Web Gateway vs. Firewall

SWGs prevent malware infections, block access to malicious websites and applications, and enforce company compliance policies, especially at branch offices and for remote workers.

SWGs are similar to firewalls in that they both can discern malicious Internet traffic from benign traffic, and both provide advanced network security protections. Firewalls function at the packet level. The primary role of SWGs, however, is to identify and protect against advanced attacks by inspecting web traffic at the application level—without compromising on overall web experience.

A fully integrated enterprise security strategy requires both SWGs and next-generation firewalls (NGFW). 

Secure Web Gateway vs. Proxy

Traditional web proxy tools manage how traffic passes between an organization’s internal endpoints and the Internet. Over time, organizations have embraced Secure Web Gateway solutions to offer a more advanced set of capabilities beyond what traditional proxy alone can offer.

 

Fortinet 6.4 Secure Web Gateway Deployment Use Cases

FortiGate SWG protects against web attacks with URL filtering, visibility and control of encrypted web traffic via SSL inspection, and application of granular web application policies. This demo walks through several key use cases: How to block malicious web pages using FortiGuard Web Filtering, How to enforce Acceptable Use policy, How to enforce DLP policy, and How to utilize Browser Isolation with SWG.

立即觀看

Fortinet Secure Web Gateway

Fortinet Secure Web Gateway defends users from internet-borne threats and helps enterprises enforce policy compliance for internet applications. With FortiGate SWG, you can deploy industry-leading Fortinet Next-Generation Firewalls as a proxy. 

FortiGate SWG consolidates NGFW and SWG services, helping enterprises manage their network security solution with ease.  It supports all proxy deployment modes and uses multiple detection techniques such as web filtering, DNS filtering, data loss prevention, antivirus, intrusion prevention, and advanced threat protection to protect employees from internet threats. 

FortiGate SWG is best suited for enterprises looking to consolidate network security services and optimize the workload of security teams.

Enterprises can also adopt FortiProxy, a dedicated Secure Web Gateway solution. Among many benefits, FortiProxy offers integration with FortiGuard Threat Intelligence services—continuously updated threat intelligence used to enhance DNS and web filtering, intrusion prevention, dynamic analysis using sandboxing, antivirus and DLP, and content analysis.

The Importance of Secure Web Gateway

SWGs keep enterprise networks safe from malicious Internet traffic, preventing threats from entering the network and causing an infection or intrusion.

Critical SWG features such as SSL inspection are increasingly necessary to protect enterprises, especially with more than half of all attacks and malicious Internet traffic today using encryption.

Secure Web Gateway (SWG) News